Re: Security question on DNS zone transfers
From: Dave Nickason [SBS MVP] (gwdibble_at_NOSPAM.frontiernet.net)
Date: 07/08/04
- Next message: Mark Holoweiko: "Re: Security question on DNS zone transfers"
- Previous message: Brad Pears: "Re: Replacing an old employees rights with a new employee username..."
- In reply to: Mark Holoweiko: "Security question on DNS zone transfers"
- Next in thread: Mark Holoweiko: "Re: Security question on DNS zone transfers"
- Reply: Mark Holoweiko: "Re: Security question on DNS zone transfers"
- Messages sorted by: [ date ] [ thread ]
Date: Thu, 8 Jul 2004 12:52:21 -0400
Assuming you're referring to the Zone Transfer tab in the properties of the
Forward Lookup Zone, you want to allow zone transfers only to servers listed
on the Name Servers tab. On Name Servers, you'd have only your SBS and any
other DNS server in your local domain (generally none - SBS would be the
only one listed).
FWIW, your DNS settings as configured in the SBS install process and by the
ICW should be correct. No manual intervention should be necessary.
"Mark Holoweiko" <mh@stonypoint-pr.com> wrote in message
news:4vOdnRD0nceMw3DdRVn-hA@comcast.com...
> In DNS settings for Forwarders, should zone transfers be allowed "to any
> server" or be limted to named servers only?
>
> If the latter, which other servers should be listed?
>
> Situation: SBS2000, two NICs, and using a dynamic DNS service (DNS2GO) to
> host Exchange e-mail and (gulp) web site.
>
> Any assistance much appreciated.
>
>
>
- Next message: Mark Holoweiko: "Re: Security question on DNS zone transfers"
- Previous message: Brad Pears: "Re: Replacing an old employees rights with a new employee username..."
- In reply to: Mark Holoweiko: "Security question on DNS zone transfers"
- Next in thread: Mark Holoweiko: "Re: Security question on DNS zone transfers"
- Reply: Mark Holoweiko: "Re: Security question on DNS zone transfers"
- Messages sorted by: [ date ] [ thread ]
Relevant Pages
|